Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 04:58:45.523 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48388 10 6452 1 2025-10-27 04:59:45.925 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38342 10 6452 1 2025-10-27 04:56:50.746 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:00:46.341 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47352 10 6452 1 2025-10-27 05:01:46.748 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50746 10 6452 1 2025-10-27 05:02:47.147 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56144 10 6452 1 2025-10-27 05:03:34.695 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:03:34.823 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:03:34.697 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:03:34.956 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:03:34.780 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:59:50.744 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:03:47.504 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58208 10 6452 1 2025-10-27 05:04:47.907 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:34268 10 6452 1 2025-10-27 05:05:48.276 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-10-27 05:02:50.748 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:06:48.691 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48416 10 6452 1 2025-10-27 05:07:49.114 00:00:11.254 TCP 1.101.0.1:3000 -> 23.104.0.1:58946 10 6452 1 2025-10-27 05:08:34.771 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:08:34.889 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:08:35.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:08:35.070 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:08:35.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:08:50.409 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:59124 10 6452 1 2025-10-27 05:05:50.746 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:09:50.769 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45390 10 6452 1 2025-10-27 05:10:51.205 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42524 10 6452 1 2025-10-27 05:11:51.606 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52484 10 6452 1 2025-10-27 05:08:50.749 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:12:52.012 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36670 10 6452 1 2025-10-27 05:13:34.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:13:35.262 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:13:35.083 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:13:34.979 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:13:35.179 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:13:52.411 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47610 10 6452 1 2025-10-27 05:14:52.810 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59920 10 6452 1 2025-10-27 05:11:50.749 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:15:53.213 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50664 10 6452 1 2025-10-27 05:16:53.577 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38052 10 6452 1 2025-10-27 05:17:53.998 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60508 10 6452 1 2025-10-27 05:18:34.810 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:18:35.453 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:18:35.283 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:18:35.327 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:18:35.371 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:14:50.751 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:18:54.367 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43524 10 6452 1 2025-10-27 05:19:54.781 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52456 10 6452 1 2025-10-27 05:20:55.182 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36692 10 6452 1 2025-10-27 05:17:50.749 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:21:55.583 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37478 10 6452 1 2025-10-27 05:22:55.985 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54332 10 6452 1 2025-10-27 05:23:35.249 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:23:35.091 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:23:35.138 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:23:35.147 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:23:35.221 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:23:56.388 00:00:10.470 TCP 1.101.0.1:3000 -> 23.104.0.1:45230 10 6452 1 2025-10-27 05:20:50.750 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:24:56.899 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45148 10 6452 1 2025-10-27 05:25:57.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40380 10 6452 1 2025-10-27 05:26:57.718 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45200 10 6452 1 2025-10-27 05:23:50.748 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:27:58.132 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52684 10 6452 1 2025-10-27 05:28:35.350 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:28:35.422 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:28:35.068 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:28:35.561 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:28:35.644 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:28:58.536 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52304 10 6452 1 2025-10-27 05:29:58.941 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36992 10 6452 1 2025-10-27 05:26:50.752 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:30:59.351 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36492 10 6452 1 2025-10-27 05:31:59.755 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57766 10 6452 1 2025-10-27 05:33:00.169 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37578 10 6452 1 2025-10-27 05:33:35.503 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:33:35.424 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:33:35.419 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:33:35.295 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:33:35.421 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:29:50.751 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:34:00.574 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49602 10 6452 1 2025-10-27 05:35:00.982 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43978 10 6452 1 2025-10-27 05:36:01.348 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52574 10 6452 1 2025-10-27 05:32:50.752 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:37:01.757 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:54310 10 6452 1 2025-10-27 05:38:02.179 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46410 10 6452 1 2025-10-27 05:38:35.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:38:35.565 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:38:35.411 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:38:35.451 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:38:35.533 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:39:02.591 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35284 10 6452 1 2025-10-27 05:35:50.751 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:40:03.010 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6452 1 2025-10-27 05:41:03.412 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34918 10 6452 1 2025-10-27 05:42:03.818 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50398 10 6452 1 2025-10-27 05:38:50.755 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:43:04.226 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35928 10 6452 1 2025-10-27 05:43:35.861 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:43:35.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:43:35.817 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:43:35.969 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:43:36.052 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:44:04.589 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46578 10 6452 1 2025-10-27 05:45:04.954 00:00:10.661 TCP 1.101.0.1:3000 -> 23.104.0.1:60344 10 6452 1 2025-10-27 05:41:50.753 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:46:05.659 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32906 10 6452 1 2025-10-27 05:47:06.065 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45688 10 6452 1 2025-10-27 05:48:06.426 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59328 10 6452 1 2025-10-27 05:48:35.853 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:48:35.834 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:48:35.801 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:48:35.908 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:48:35.883 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:44:50.757 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:49:06.829 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54270 10 6452 1 2025-10-27 05:50:07.232 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34710 10 6452 1 2025-10-27 05:51:07.634 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46474 10 6452 1 2025-10-27 05:47:50.756 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:52:08.032 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38530 10 6452 1 2025-10-27 05:53:08.436 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49544 10 6452 1 2025-10-27 05:53:35.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:53:35.942 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:53:35.943 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:53:35.851 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:53:35.710 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:54:08.845 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:48984 10 6452 1 2025-10-27 05:50:50.759 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 05:55:09.267 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43964 10 6452 1 2025-10-27 05:56:09.671 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-10-27 05:57:10.112 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41812 10 6452 1 2025-10-27 05:53:50.756 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 05:58:10.525 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32854 10 6452 1 2025-10-27 05:58:36.158 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 05:58:35.816 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 05:58:35.703 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:58:35.833 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 05:58:35.916 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 896, avg pps: 0, avg bpp: 408 Time window: 2025-10-27 04:56:50 - 2025-10-27 05:58:51 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0010s Wall: 0.0016s flows/second: 86264.5 Runtime: 0.0016s